Snowflake-Labs / sansshell
A non-interactive daemon for host management
☆105Updated last week
Alternatives and similar repositories for sansshell:
Users that are interested in sansshell are comparing it to the libraries listed below
- Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.☆78Updated last year
- Integrates Spiffe and Vault to have secretless authentication☆88Updated last week
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆28Updated 9 months ago
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 10 months ago
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago
- ☆93Updated last month
- ☆74Updated 3 weeks ago
- ☆56Updated 2 years ago
- Curated list of SPIFFE and SPIRE resources☆55Updated 2 years ago
- an experimental suite of applications and APIs for monitoring kernel-level activity on a live Kubernetes cluster☆69Updated 3 years ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆62Updated this week
- The SPIFFE Helper is a tool that can be used to retrieve and manage SVIDs on behalf of a workload☆51Updated last week
- vault-auth-spire is an authentication plugin for Hashicorp Vault which allows logging into Vault using a Spire provided SVID.☆41Updated last year
- Trust Dexter to ensure that all your images are pinned by digest for better security☆29Updated last year
- A curated list of awesome SPIFFE and SPIRE related things☆12Updated 8 months ago
- ☆97Updated 3 weeks ago
- ☆54Updated this week
- ☆112Updated 3 months ago
- Go implementation of witness☆34Updated this week
- Container Storage Interface components for SPIFFE☆61Updated last week
- sigstore the hard way!☆111Updated 11 months ago
- 🔭 Secret discovery service (SDS): simplifying certificate management for relying parties (such as Envoy)☆74Updated this week
- Add digests to container and init container images in Kubernetes pod and pod template specs. Use either as a mutating admission webhook, …☆140Updated last month
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆85Updated this week
- A specification for signing methods and formats used by Secure Systems Lab projects.☆73Updated 7 months ago
- Inspect certificate authorities in container images☆233Updated 3 weeks ago
- Kubernetes audit logging, when you don't control the control plane☆73Updated last week
- 🎟 Voucher creates attestations for Binary Authorization☆73Updated this week
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - for kind (and GKE, RKE2, AKS)☆36Updated this week
- sigstore installation walkthrough, local☆57Updated 11 months ago